Назад
Company hidden
5 часов назад

Lead Security Engineer (Cloud Security)

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Security Engineer (Cloud Security): Integrating security controls across cloud infrastructure, applications, APIs, data platforms, CI/CD pipelines, and operational processes with an accent on federal compliance, DevSecOps, IAM, and Zero Trust. Focus on securing distributed system-of-systems environments, supporting ATO and continuous monitoring, coordinating vulnerability remediation, and strengthening security posture across multi-contractor programs.

Location: McLean, Virginia; Suitland, Maryland; Virginia, DC, Maryland Metro Area, United States

Company

hirify.global delivers federal technology solutions using a product-oriented approach focused on speed, ownership, and execution.

What you will do

  • Provide technical leadership for enterprise security engineering within a large-scale application modernization program.
  • Design and implement security controls across cloud, application, API, data, infrastructure, and CI/CD layers.
  • Integrate automated scanning, policy enforcement, governance, and security controls into DevSecOps pipelines.
  • Support ATO processes, POA&M management, continuous monitoring, audits, remediation tracking, and federal compliance activities.
  • Secure distributed system-of-systems environments spanning multiple vendors, contractors, platforms, and architectures.
  • Mentor engineering and security teams on secure architecture, coding, operations, and DevSecOps practices.

Requirements

  • U.S. citizenship and the ability to obtain and maintain a Public Trust clearance.
  • 15+ years of experience in cybersecurity, security engineering, or enterprise modernization.
  • CISSP and CCSP certifications are required.
  • Experience securing large-scale cloud and hybrid environments, APIs, microservices, distributed systems, and system-of-systems architectures.
  • Experience with ATO, POA&M, continuous monitoring, NIST 800-53, FedRAMP, FISMA, Zero Trust, MFA, secure SDLC, IAM, SBOM, threat modeling, vulnerability management, and data security.
  • Experience with SIEM, container security, image scanning, runtime protection, security operations, dashboards, risk reporting, and compliance documentation.

Nice to have

  • CISM, CISA, or other advanced cybersecurity certifications.
  • Experience with large-scale federal modernization programs and enterprise Zero Trust architectures.
  • Experience securing high-volume, near real-time data processing and cloud-native operational security environments.

Culture & Benefits

  • Flexible schedules and teleworking options.
  • Medical insurance plans, including HSA-eligible options.
  • Employer-paid dental, vision, short-term disability, long-term disability, and life insurance.
  • 5% 401(k) company match, paid holidays, PTO accrual, and paid parental leave.
  • Professional development, career growth opportunities, and team events.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →